Darkandroider 🤘🏻💻🤘🏻

5.4K posts

Darkandroider 🤘🏻💻🤘🏻 banner
Darkandroider 🤘🏻💻🤘🏻

Darkandroider 🤘🏻💻🤘🏻

@darkandroider

Father by day, Bug Bounty hunter at night. Find something that keeps you awake. Member of SpInquisitors team. Bug Bounty ES administrator: https://t.co/yQvBgnP0hs

Katılım Nisan 2016
1.1K Takip Edilen572 Takipçiler
Sabitlenmiş Tweet
Darkandroider 🤘🏻💻🤘🏻
Darkandroider 🤘🏻💻🤘🏻@darkandroider·
Después de dos años fuera del mundo del Bug Bounty, decidí volver este año y probar suerte: - 4 vulnerabilidades pagadas - 6 vulnerabilidades resueltas pdtes. de pago - 5 vulnerabilidades en Triaged - 2 vulnerabilidades nuevas Es difícil pero no imposible. No te rindas nunca 💪
Español
3
1
15
925
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Filipe
Filipe@filicroval·
Esta herramienta te deja buscar cualquier escena o movimiento dentro de horas de vídeos en mp4 y sacar el clip exacto al instante. 100% open source y funciona en local.
Español
5
60
351
15.4K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
BandaAncha
BandaAncha@bandaanchaeu·
"Proteger" el fútbol ya penaliza a nuestro ecosistema tecnológico: ➡️ Vercel y BunnyCDN retiran sus nodos en España 👇 bandaancha.eu/foros/proteger…
Español
7
140
271
16.2K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Román Ramírez
Román Ramírez@patowc·
@bandaanchaeu Sinceramente, Vercel se lo merece. A ver si han aprendido la lección de a dónde te lleva creer que "colaborar" con un bully te va a proteger. Espero que les vaya especialmente mal y aprendan la lección.
Español
2
5
31
2.8K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
H4x0r.DZ 🇰🇵
H4x0r.DZ 🇰🇵@h4x0r_dz·
To be secure in 2026 you have to shut down your bug bounty program on HackerOne. Lovable got hacked because HackerOne's incompetent triage team closed multiple valid vulnerability reports starting February 22, 2026 as "intended behavior." Poorly trained monkeys. Zero escalation to Lovable's security team. AI bots auto-closing critical findings. The result? Public project chat history and source code were exposed for MONTHS until a researcher was forced to go public. Two companies. Same platform. Same failure. Same lies. ClickUp. Lovable. Both breached because HackerOne buried critical reports while collecting your bounty fees. HackerOne is NOT a security partner. They are a liability. They close real vulnerabilities. They protect their own metrics over your data. They let researchers get attacked while they stay silent. Stop paying HackerOne to get hacked. lovable.dev/blog/our-respo…
H4x0r.DZ 🇰🇵 tweet media
English
52
94
869
85.2K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Sergio Conde
Sergio Conde@skgsergio·
Está LaLiga bloqueando más de 1000 IPs de @awscloud, en concreto del servicio de S3 de la región us-east-1... Casi nada. hayahora.futbol
Español
4
58
107
9.3K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Intigriti
Intigriti@intigriti·
SQL Injections aren't dead! ❌ You just need to know where and how to test for them! 🤠 In our latest article, we explored how SQL injections arise, how to test and exploit them to leak secrets, bypass authentication, and even achieve RCEs! 😎 Read the article today! 👇 intigriti.com/researchers/bl…
Intigriti tweet media
English
6
27
131
7.7K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
/RootedCON
/RootedCON@rootedcon·
Organizaciones civiles denuncian ante la Comisión Europea la pasividad de las instituciones ante los bloqueos de Internet en la lucha contra la piratería internautas.org/denuncia-ce/ #LaLigaGate
Español
0
26
59
1.5K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
La Razón
La Razón@larazon_es·
❌ Se acabaron los "daños colaterales" de Javier Tebas: el Congreso frena los bloqueos indiscriminados de IPs por parte de LaLiga. ➡️ Tras años de bloqueos masivos sin control, se impondrán límites para que el Internet español no se paralice cada... larazon.es/tecnologia-con…
Español
372
2.1K
11.8K
2.5M
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Román Ramírez
Román Ramírez@patowc·
Parece que las cosas entran en el camino del sentido común y el Congreso, finalmente, toma cartas en el asunto: democrata.es/politica/congr… Mi nivel de confianza en el sistema ha aumentado de golpe y creo que esta información ayudará al @TConstitucionE a poder decidir.
Español
15
32
93
4.9K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Clandestine
Clandestine@akaclandestine·
GitHub - mazen160/secrets-patterns-db: Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more. · GitHub github.com/mazen160/secre…
English
0
8
45
2.6K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Wiz
Wiz@wiz_io·
🚨 BREAKING: Wiz Research discovered Remote Code Execution on GitHub.com with a single git push The flaw in @github allowed unauthorized access to millions of repositories belonging to other users and organizations 🤯
Wiz tweet media
English
92
1K
4.5K
536.4K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
zack0x01
zack0x01@zack0x01_·
I wanna share with you a bug I found lately 👇 Found an issue during a pentest for a friend’s company. The app was just a single-page site — no login, no account system, only a Calendly booking. Did some port scanning → found a few open ports One stood out: 19540 (Milvus DB) Started digging… → Found the Swagger docs → Pulled all API endpoints using Claude → Tried hitting them… all required auth ❌ No luck… until I tried default creds: root:milvus gave the credential back to claude and: 💥 BOOM — full access All APIs unlocked → 250+ private conversations + files exposed From a “simple” 1-page app with no login 😅 When I reported it, they couldn’t believe it started from just their main domain. #BugBounty #Hacking #CyberSecurity
English
4
6
122
5.1K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
Co11ateral
Co11ateral@co11ateral·
Car Hacking with GearGoat GearGoat is a car simulator that allows you to work with the CAN bus, which is the internal communication network used by most modern vehicles In the real world, this is equal to connecting a CAN adapter such as CANable or Macchina M2 into the OBD-II port, which is typically located under the dashboard. This port is essentially a gateway into the vehicle’s internal network See it in action on our article: hackers-arise.com/automobile-hac… @three_cube @_aircorridor #cybersecurity
Co11ateral tweet media
English
3
146
776
31.3K
Darkandroider 🤘🏻💻🤘🏻
Hola @O2, dadle las gracias a @zeleris porque no sólo llevan desde el día 13 para entregar 2 SIM, sino que HOY, que ha habido gente en casa TODO EL DIA, han enviado un SMS diciendo que el paquete no se ha podido entregar porque no había NADIE. Buscando nueva compañía 👋
Darkandroider 🤘🏻💻🤘🏻 tweet mediaDarkandroider 🤘🏻💻🤘🏻 tweet media
Español
2
1
0
103
Darkandroider 🤘🏻💻🤘🏻 retweetledi
鸟哥 | 蓝鸟会🕊️
吓到我了! GitHub上有个工具叫GhostTrack,输入一个手机号,能直接扫出这人在哪些平台注册过账号,还能查IP定位、运营商信息。 克隆代码跑脚本,5分钟搞定,门槛低得离谱。你以为自己在网上隐身呢? 早被扒得透透的了。信息安全这事,真得重视起来。 🔗 github.com/HunxByts/Ghost…
鸟哥 | 蓝鸟会🕊️ tweet media
中文
137
1.4K
9.8K
930.3K
Darkandroider 🤘🏻💻🤘🏻 retweetledi
DeepTechTR 🇹🇷
DeepTechTR 🇹🇷@DeepTechTR·
🚨 Arkadaşlar, web scraping yapan herkesin mutlaka denemesi gereken bir araç çıktı. 🫪 🚀 Obscura, Rust ile yazılmış ultra hafif ve son derece stealth bir headless browser. 💥 Öne çıkan özellikleri: 👇🏻 - Sadece 30 MB RAM tüketiyor - Her yeni session’da tarayıcı parmak izini sıfırdan üretiyor - 3500’den fazla tracker domain’ini (Hotjar, analytics vb.) varsayılan olarak blokluyor - Puppeteer ve Playwright ile tam uyumlu - Bot tespitini çok zorlaştırıyor Klasik Chrome tabanlı headless browser’lara göre çok daha hafif, gizli ve etkili çalışıyor. Web scraping, veri toplama ve otomasyon işleriyle uğraşıyorsanız bu aracı mutlaka incelemenizi öneririm. 🔗 GitHub: github.com/h4ckf0r0day/ob…
Türkçe
2
33
343
17.2K